Black Duck Home Page
Black Duck Home Page
  • 软件质量与安全支持
  • English
  • 日本語
  • 简体中文
close search bar

抱歉,尚不支持此语言

close language selection
  • English
  • 日本語
  • 简体中文
  • 解决方案
  • 产品
  • 服务
  • 资源
  • 博客
  • 公司
  • 联系销售

公司

go back

关于Black Duck

  • 领导
  • 新闻
  • 微博
  • 合作伙伴
  • 职业生涯
  • 办公室地址
  • 联系销售
Gartner Magic Quadrant

2023年Gartner应用安全测试魔力象限报告 了解原因

Forrester Wave Leader 2023 SAST Recognition

Forrester Wave SAST 领导者 了解原因

Forrester Wave Leader 2023 Software Analysis

Forrester Wave SCA 领导者 了解原因

  • Leadership | Meet the team guiding Black Duck's vision and strategy.
  • Newsroom | Latest news, press releases, and media coverage about Black Duck.
  • Blog | Insights, updates, and expert opinions on application security.
  • Partners | Information on Black Duck's partnerships and collaboration opportunities.
  • Careers | Explore job opportunities and career paths at Black Duck.
  • Contact Sales | Get in touch with our sales team for product inquiries and consultations.
close sub navigation

产品

go back

集成SasS平台

  • Polaris Platform
  • fAST Static
  • fAST SCA
  • fAST Dynamic

工具

  • Coverity静态分析
  • Black Duck软件组成分析
  • 持续动态分析
  • Seeker交互式应用安全测试
  • SRM软件风险态势管理
  • Defensics 协议模糊测试

集成

  • Code Sight IDE插件
  • SCM集成
  • 构建和持续集成工具
  • 开发人员工作流集成
  • 第三方AST工具集成
  • 云部署集成
Gartner Magic Quadrant 2023年Gartner应用安全测试魔力象限报告 了解原因
  • Polaris Platform | Unified platform for managing software security and compliance.
  • fAST Static | Unified platform for managing software security and compliance.
  • fAST SCA | Unified platform for managing software security and compliance.
  • fAST Dynamic | Unified platform for managing software security and compliance.
  • Coverity Static | Static analysis tool for detecting software defects and vulnerabilities.
  • Black Duck SCA | Software composition analysis to manage open source security and license compliance.
  • WhiteHat Continuous Dynamic | Continuous dynamic application security testing.
  • Seeker Interactive | Interactive application security testing tool for detecting vulnerabilities.
  • Software Risk Manager ASPM | Application security posture management tool for risk management.
  • Defensics Protocol Fuzzing | Protocol fuzzing tool to identify and fix security flaws.
  • Code Sight IDE Plug-in | Integrated development environment plug-in for real-time security feedback.
  • SCM Integrations | Source code management integrations for seamless security checks.
  • Build & CI Tool Integrations | Integrations with build and continuous integration tools.
  • Developer Workflow Integrations | Tools to integrate security into the developer workflow.
  • 3rd-Party AST Tool Integrations | Integrations with third-party application security testing tools.
  • Cloud Deployment Integrations | Integrations for securing cloud deployments.
  • Open Source & Security Audits | Comprehensive technical due diligence services for M&A.
close sub navigation

解决方案

回去

用例

  • AI 生成的代码
  • 应用安全测试
  • AppSec计划整合
  • API 安全测试
  • DevSecOps
  • 软件供应链安全
  • 管理AppSec风险
  • 云与容器安全
  • 开源许可合规
  • 合并与收购
  • 质量与安全标准合规

按技术

  • 静态分析
  • 软件组成分析
  • 动态分析
  • 交互式应用安全测试
  • 托管渗透测试
  • 移动应用安全测试 (MAST)
  • 应用安全态势管理
  • 协议模糊测试

按行业

  • 汽车
  • 金融服务
  • 物联网与嵌入式设备
  • 医疗设备
  • 公共部门

按团队

  • 开发和开发运维团队
  • 安全团队
  • 法务团队
  • AI-generated code | Harness the power of AI coding assistants while managing the risks.
  • API Security Testing | Manage software risks with a holistic API security testing program.
  • AppSec Consolidation | Simplify your application security program
  • Application Security Testing | Solutions to address security risks at all stages of the application life cycle.
  • DevSecOps | Solutions to help shift security left without slowing down your development teams.
  • Software Supply Chain Security | Solutions to identify and manage software supply chain risks end-to-end.
  • Manage AppSec Risk | Scale your application security program without increasing complexity or adding friction.
  • Cloud & Container Security | Optimize your applications for secure deployment and operation in the cloud.
  • Open Source License Compliance | Effective solutions for ensuring open source license compliance.
  • M&A Due Diligence | Identify software risks that could negatively impact the value of acquired IP.
  • Quality & Security Standards Compliance | Ensure your software complies with the standards critical to customers and regulators.
  • Static Analysis (SAST) | Analyzing code for security vulnerabilities without executing it.
  • Software Composition Analysis (SCA) | Analyzing software components for security and license compliance.
  • Dynamic Analysis (DAST) | Testing running applications for security vulnerabilities.
  • Interactive Analysis (IAST) | Real-time security testing during application execution.
  • Penetration Testing | Simulated cyberattacks to identify vulnerabilities.
  • Mobile Application Security Testing (MAST) | Ensuring the security of mobile applications.
  • Application Security Posture Management (ASPM) | Managing and improving application security posture.
  • Fuzz Testing | Identifying vulnerabilities by inputting random data to applications.
  • Automotive | Security solutions for automotive industry applications.
  • Financial Services | Security solutions tailored for financial services.
  • IoT & Embedded | Security for Internet of Things and embedded systems.
  • Medical Device | Security solutions for medical devices.
  • Public Sector | Security solutions for government and public sector organizations.
  • Dev and DevOps Teams | Security tools and practices for development and DevOps teams.
  • Security Teams | Solutions and support for dedicated security teams.
  • Legal Teams | Resources and compliance tools for legal teams.
close sub navigation

服务

回去

测试服务

  • 应用安全测试
  • 托管渗透测试
  • 移动应用安全测试 (MAST)

项目服务

  • 威胁与风险评估
  • 应用安全项目策略
  • 软件安全培训
  • 实施&部署

审计服务

  • 开源和安全审计
Gartner Magic Quadrant 2023年Gartner应用安全测试魔力象限报告 了解原因
  • Security Testing Services Overview | Summary of the security testing services offered.
  • Penetration Testing | Simulated cyberattacks to identify vulnerabilities in your systems.
  • Mobile Application Security Testing (MAST) | Ensuring the security of mobile apps against threats.
  • Threat & Risk Assessments | Evaluation of potential security threats and vulnerabilities<./li>
  • Program Strategy & Planning | Developing effective strategies for your security program.
  • Security Training | Courses and workshops to enhance your security skills and knowledge.
  • Implementation & Deployment | Assistance with deploying and integrating security solutions.
  • Open Source & Security Audits | Evaluations of open source components and overall security posture.
close sub navigation

资源

回去

最近更新

  • 新闻
  • 微博
  • 概述

客户资源

  • 软件质量与安全支持
  • 文档
  • Black Duck学院
  • 搜索知识库
  • 社区问答

其他资源

  • 产品单页
  • 案例
  • 分析师报告
  • 术语表
  • 内容库
Gartner Magic Quadrant 2023年Gartner应用安全测试魔力象限报告 了解原因
  • Newsroom | Latest news, press releases, and media coverage about Black Duck.
  • Blog | Insights, updates, and expert opinions on application security.
  • Cybersecurity Research Center | In-depth studies and findings on cybersecurity topics.
  • Support | Assistance and troubleshooting for Black Duck products and services.
  • Documentation | Detailed guides and manuals for using Black Duck products.
  • Black Duck Academy | Educational courses and training on application security.
  • Search Knowledge Base | Find answers and solutions in our extensive knowledge repository.
  • Community Q&A | Engage with other users and experts to get your questions answered.
  • eBooks | Downloadable resources on various application security topics.
  • Case Studies | Real-world examples of how customers use Black Duck solutions.
  • Research & Reports | Comprehensive reports and analysis on industry trends.
  • AppSec Glossary | Definitions and explanations of common application security terms.
  • Resource Library | A collection of all available resources and materials.
close sub navigation

产品与服务索引

  • 软件质量与安全
    • Continuous Dynamic
    • 服务

应用安全集成解决方案


Polaris Software Integrity Platform®

Polaris fAST Static

Polaris fAST SCA

Code Sight

Software Risk Manager

专业服务


BSIMM

嵌入式软件测试

内部威胁检测

导师讲解培训 (ILT)

成熟度升级方案 (MAP)

Red Teaming

软件架构与设计

胖客户端测试

威胁建模

集成工具


Black Duck

Coverity

Defensics

Seeker

WhiteHat Dynamic

DevSecOps集成


DevSecOps集成

并购尽职调查


开源和安全审计

Black Duck Home Page

关注

管理订阅 管理Cookie设置 800 District Ave. Ste 201
Burlington, MA 01803

联系我们

解决方案

  • AI 生成的代码
  • API 安全测试
  • AppSec计划整合
  • 应用安全测试
  • DevSecOps
  • 软件供应链安全
  • 管理AppSec风险
  • 云与容器安全
  • 开源许可合规
  • 合并与收购
  • 质量与安全标准合规

产品与服务

  • AppSec软件即服务平台
  • 静态分析
  • 软件组成分析
  • 交互式应用安全测试
  • 动态分析
  • 托管渗透测试
  • 协议模糊测试
  • 应用安全项目策略
  • 威胁与风险评估

支持

  • 社区
  • 资料文献
  • 产品教育
  • 软件安全培训
  • 附加服务

资源

  • 资源中心
  • 网络研讨会
  • 演示
  • 分析师报告
  • 产品单页
  • 白皮书
  • Blog

了解更多

  • 关于我们
  • 联系销售
  • 案例
  • 消息
  • 招聘信息
  • 术语表

法律声明

  • 协议
  • 隐私
  • 安全
©2025 Black Duck Software, Inc. All Rights Reserved